dhi.io/openshift-console
4, 4-debian, 4-debian13, 4.22, 4.22-debian, 4.22-debian13, 4.22.15, 4.22.15-debian, 4.22.15-debian13
sha256:5d964113845560124655a712113bd048ff1b0fb942fae3bedcee31431375ecbf
Manifest digest:sha256:b1aac58d9d684c1b2c8b473ce903beabcca9467cadd422e1236eaa1cf4eb207e
Size
26.59 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/openshift-console:42. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/openshift-console:4 --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/openshift-console@sha256:a7b413c5fdc3a4c0da21ec115afabd678a07f808481d67e505d4fd0a288cfb18 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/openshift-console@sha256:b9255ca39e5b383b7fa2a72af4d319c188b3a3aa565b58475f84dc02d17c1db4 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/openshift-console@sha256:28481f7c41f79ac0ca458d9e5f7c38116b0d4b1aca1e84e8b4e19de0e8edbe67 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/openshift-console@sha256:e48e851c0f539a2b91188b8786d96c4bb15e6bba088127b45c8fccbbae1716a9 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/openshift-console@sha256:58c9b7921b6b6502e5660ec4e14c316203745c663b5bb6fb2c0f6257c22731f4 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/openshift-console@sha256:e29c09db0ec053798f7689c865821d09ab022bbc39d2c0e3aab48b6973be6d9d |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/openshift-console@sha256:e366cb0aa10e5fe147c4df1b248372e8bdd9a70f9c182857cc1e52e441dd2d4f |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/openshift-console@sha256:91f21212d3c16fda8893bef4c9cdafbe8393cf8c85469be1920e290539eaad8a |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/openshift-console@sha256:7a53c3a5251e0c82e233f48c5cff8fcd1ed108be87cdb54da17cac5e96dcf57f |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/openshift-console@sha256:d6ad76983b4d340d9f7e2d6b387510aa0477b8f1e441a64bb385b01ac2c56266 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/openshift-console@sha256:2611a7052378f845179d95b39171dab9008445ec2dc10bb1fd155866529a7fb0 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/openshift-console@sha256:012fafdd6295e77f6c094591dd034975a149b6adcc01e2fd3e2bf5cdd4f35b96 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/openshift-console@sha256:5caa05a8703788bb4f5535ee00de820c6f4a8afe868af884c4d004d00743a5c0 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/openshift-console@sha256:889e60acb2caabb4b997de5d158ddf21e475a702f6414bf4bcf254a0a6df6491 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/openshift-console@sha256:f7dc9041491442053cfc80d664b66c2d00c8ea3279a4bf79a3463f3299153d84 |